{ "id": "CVE-2023-3706", "sourceIdentifier": "contact@wpscan.com", "published": "2023-10-16T20:15:14.780", "lastModified": "2023-11-07T04:19:25.570", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "The ActivityPub WordPress plugin before 1.0.0 does not ensure that post titles to be displayed are public and belong to the plugin, allowing any authenticated user, such as subscriber to retrieve the title of arbitrary post (such as draft and private) via an IDOR vector" }, { "lang": "es", "value": "El complemento ActivityPub de WordPress anterior a 1.0.0 no garantiza que los t\u00edtulos de las publicaciones que se mostrar\u00e1n sean p\u00fablicos y pertenezcan al complemento, lo que permite a cualquier usuario autenticado, como un suscriptor, recuperar el t\u00edtulo de una publicaci\u00f3n arbitraria (como borrador y privada) a trav\u00e9s de un IDOR vector" } ], "metrics": { "cvssMetricV31": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.1", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "LOW", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "LOW", "integrityImpact": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "baseSeverity": "MEDIUM" }, "exploitabilityScore": 2.8, "impactScore": 1.4 } ] }, "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:automattic:activitypub:*:*:*:*:*:wordpress:*:*", "versionEndExcluding": "1.0.0", "matchCriteriaId": "78ADABE4-21BE-4F20-BE6D-BB12EDBCD26F" } ] } ] } ], "references": [ { "url": "https://wpscan.com/vulnerability/daa4d93a-f8b1-4809-a18e-8ab63a05de5a", "source": "contact@wpscan.com", "tags": [ "Exploit", "Third Party Advisory" ] } ] }